Go Back on AZ-900 Exam
Available in 1, 3, 6 and 12 Months Free Updates Plans
PDF: $15 $60

Test Engine: $20 $80

PDF + Engine: $25 $99

AZ-900 Practice Test


Page 1 out of 6 Pages

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

Your company plans to purchase Azure.

The company’s support policy states that the Azure environment must provide an option to access support engineers by phone or email.

You need to recommend which support plan meets the support policy requirement.

Solution: Recommend a Basic support plan.

Does this meet the goal?


A. Yes


B. No





B.
  No

Explanation:

The Basic support plan does not have any technical support for engineers.

Access to Support Engineers via email or phone is available in the following support plans:

Premier, Professional Direct and standard.

References:

https:// azure.microsoft.com/en-gb/support/plans/

Which Azure service should you use to store certificates?


A. Azure Security Center


B. an Azure Storage account


C. Azure Key Vault


D. Azure Information Protection





C.
  Azure Key Vault

Explanation:

Azure Key Vault is a secure store for storage various types of sensitive information including passwords and certificates.

Azure Key Vault can be used to Securely store and tightly control access to tokens, passwords, certificates, API keys, and other secrets.

Secrets and keys are safeguarded by Azure, using industry-standard algorithms, key lengths, and hardware security modules (HSMs). The HSMs used are Federal Information Processing Standards (FIPS) 140-2 Level 2 validated.

Access to a key vault requires proper authentication and authorization before a caller (user or application) can get access. Authentication establishes the identity of the caller, while authorization determines the operations that they are allowed to perform.

References:

https://docs.microsof t.com/en-us/azure/key-vault/key-vault-overview

This question requires that you evaluate the underlined text to determine if it is correct. When planning to migrate a public website to Azure, you must plan to pay monthly usage costs.

Instructions: Review the underlined text. If it makes the statement correct, select “No change is needed”. If the statement is incorrect, select the answer choice that makes the statement correct.


A. No change is needed


B. Deploy a VPN


C. pay to transfer all the website data to Azure


D. reduce the number of connections to the website





A.
  No change is needed

Explanation:

In Azure you only pay for outbound traffic which is charged in GB as you are entitled to 5GB in a month but afterwards you pay for data being transferred out. However, with inbound data traffic into your environment, this is free.

You have an Azure environment that contains multiple Azure virtual machines. You plan to implement a solution that enables the client computers on your on-premises network to communicate to the Azure virtual machines. You need to recommend which Azure resources must be created for the planned solution. Which two Azure resources should you include in the recommendation? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.


A. a virtual network gateway


B. a load balancer


C. an application gateway


D. a virtual network


E. a gateway subnet





A.
  a virtual network gateway

E.
  a gateway subnet

Explanation:

To implement a solution that enables the client computers on your on-premises network to communicate to the Azure virtual machines, you need to configure a VPN (Virtual Private Network) to connect the on-premises network to the Azure virtual network.

The Azure VPN device is known as a Virtual Network Gateway. The virtual network gateway needs to be located in a dedicated subnet in the Azure virtual network. This dedicated subnet is known as a gateway subnet and must be named ‘GatewaySubnet’.

Note: a virtual network (answer D) is also required. However, as we already have virtual machines deployed in a Azure, we can assume that the virtual network is already in place.

References:

https://docs .microsoft.com/en-us/office365/enterprise/connect-an-on-premises-network-to-a-microsoft-azure-virtual-network

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.<br><br>

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.<br><br>

Your company plans to purchase Azure.<br><br>

The company’s support policy states that the Azure environment must provide an option to access support engineers by phone or email. You need to recommend which support plan meets the support policy requirement.<br><br>

Solution: Recommend a Standard support plan.<br><br>

Does this meet the goal?<br><br>


A. Yes


B. No





A.
  Yes

Explanation:

The Standard, Professional Direct, and Premier support plans have technical support for engineers via email and phone.

References:

https://azure.microsoft.com/en-gb/s upport/plans/


Page 1 out of 6 Pages